Solved

Setting up RADIUS services on a Cisco 1921 and Windows Server 2003

Posted on 2011-03-07
3
1,136 Views
Last Modified: 2012-05-11
I'm new to Cisco routers and to RADIUS services. I have no idea what I'm supposed to do. I've installed the Internet Authentication Service on the server but that's as far as I've got. I have no idea how to configure IAS on the Windows Server and no idea how to configure the Cisco router to use it when it is configured. Can anyone offer any help?
0
Comment
Question by:Russ Suter
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
3 Comments
 
LVL 17

Accepted Solution

by:
MAG03 earned 500 total points
ID: 35066975
For the windows server 2003 configuration have a look at this link:
http://technet.microsoft.com/en-us/library/cc787275(WS.10).aspx

on the cisco device you would need to use AAA, I am assuming you are using telnet for this example:

enable
configure terminal


aaa new-model
aaa authentication default none
(if you have not configured passwords for the console line or any other line for that matter, the cisco device will create a random password and once you log out you will be locked out.)

aaa authentication login RADIUS group radius local-case (This will assign the group NAMED RADIUS to use the radius server and if you lock youself out some how, you can fall back to the locally stored username and password on the cisco device. If you do not want to configure the "fall back" just remove the local-case at the end of the command)

radius-server host x.x.x.x (where x.x.x.x is the ip address of the radius server)

line vty 0 4
login authentication RADIUS
( assigns the AAA authentication group RADIUS to vty line.)
0
 
LVL 20

Author Comment

by:Russ Suter
ID: 35071593
That looks like a good start and something worth playing with. However, if I completely screw up the Cisco router settings is there a quick and easy way to reload the last known good configuration without having to power cycle the router?
0
 
LVL 17

Expert Comment

by:MAG03
ID: 35078588
you could save the current / old configuration to flash:

copy run flash

you should then be asked to enter a file name to save the configuration under...if i remember correctly.

and then if things go bad issue the following command:

configure replace flash:<file name>

This should replace the running configuration. However I have had varied success with this as it seems on routers the configuration is only merged with the existing configuration.  I have had no issues with using this on switches.
0

Featured Post

Efficient way to get backups off site to Azure

This user guide provides instructions on how to deploy and configure both a StoneFly Scale Out NAS Enterprise Cloud Drive virtual machine and Veeam Cloud Connect in the Microsoft Azure Cloud.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
ACL deny / Permit 10 47
NTP configuration on Cisco switch 3 36
Cisco 4400 will not take SFP module ? SFP 10 GB module 1 50
Failover for DMVPN 3 31
OpenVPN is a great open source VPN server that is capable of providing quick and easy VPN access to your network on the cheap.  By default the software is configured to allow open access to your network.  But what if you want to restrict users to on…
I recently attended Cisco Live! in Las Vegas, a conference that boasted over 28,000 techies in attendance, and a week of hands-on learning hosted by a solid partner with which Concerto goes to market.  Every year, Cisco displays cutting-edge technol…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Windows 10 is mostly good. However the one thing that annoys me is how many clicks you have to do to dial a VPN connection. You have to go to settings from the start menu, (2 clicks), Network and Internet (1 click), Click VPN (another click) then fi…

733 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question